Cross Site Scripting (XSS) Vulnerability in jizhicms v2.4.6

Cross Site Scripting (XSS) Vulnerability in jizhicms v2.4.6

CVE-2023-31862 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

jizhicms v2.4.6 is vulnerable to Cross Site Scripting (XSS). The content of the article published in the front end is only filtered in the front end, without being filtered in the background, which allows attackers to publish an article containing malicious JavaScript scripts by modifying the request package.

Learn more about our Cms Pen Testing.